Dark Reading: Attacks/Breaches
Google: Phishing Campaign Targets YouTube Creators
The attackers behind the campaign, which distributes cookie theft malware, are attributed to actors recruited in a Russian-speaking forum.
___________________________
@hacking_Attack
@Hacking_Video
Google: Phishing Campaign Targets YouTube Creators
The attackers behind the campaign, which distributes cookie theft malware, are attributed to actors recruited in a Russian-speaking forum.
___________________________
@hacking_Attack
@Hacking_Video
Dark Reading
Google: Phishing Campaign Targets YouTube Creators
The attackers behind the campaign, which distributes cookie theft malware, are attributed to actors recruited in a Russian-speaking forum.
Dark Reading: Attacks/Breaches
Execs From Now-Defunct GigaTrust Arrested in $50M Fraud Scheme
Email endpoint security-as-a-service company founder and two others indicted in an elaborate financial fraud scheme.
___________________________
@hacking_Attack
@Hacking_Video
Execs From Now-Defunct GigaTrust Arrested in $50M Fraud Scheme
Email endpoint security-as-a-service company founder and two others indicted in an elaborate financial fraud scheme.
___________________________
@hacking_Attack
@Hacking_Video
Dark Reading
Execs From Now-Defunct GigaTrust Arrested in $50M Fraud Scheme
Email endpoint security-as-a-service company founder and two others indicted in an elaborate financial fraud scheme.
Dark Reading: Attacks/Breaches
CISA Awards $2 Million to Bring Cybersecurity Training to Rural Communities and Diverse Populations
Award recipients NPower and CyberWarrior recognized for development of cyber workforce training programs.
___________________________
@hacking_Attack
@Hacking_Video
CISA Awards $2 Million to Bring Cybersecurity Training to Rural Communities and Diverse Populations
Award recipients NPower and CyberWarrior recognized for development of cyber workforce training programs.
___________________________
@hacking_Attack
@Hacking_Video
Dark Reading
CISA Awards $2 Million to Bring Cybersecurity Training to Rural Communities and Diverse Populations
Award recipients NPower and CyberWarrior recognized for development of cyber workforce training programs.
Dark Reading: Attacks/Breaches
MITRE Engenuity Announces ATT&CK® Evaluations Call for Participation for Managed Services
Offering to provide transparency into the capabilities of managed security service providers and and managed detection and response competencies.
___________________________
@hacking_Attack
@Hacking_Video
MITRE Engenuity Announces ATT&CK® Evaluations Call for Participation for Managed Services
Offering to provide transparency into the capabilities of managed security service providers and and managed detection and response competencies.
___________________________
@hacking_Attack
@Hacking_Video
Dark Reading
MITRE Engenuity Announces ATT&CK® Evaluations Call for Participation for Managed Services
Offering to provide transparency into the capabilities of managed security service providers and and managed detection and response competencies.
Dark Reading: Attacks/Breaches
Microsoft, Intel, and Goldman Sachs to Lead New TCG Work Group to Tackle Supply Chain Security Challenges
Led by representatives from the three companies, the work group will create guidance that defines, implements, and upholds security standards for the entire supply chain.
___________________________
@hacking_Attack
@Hacking_Video
Microsoft, Intel, and Goldman Sachs to Lead New TCG Work Group to Tackle Supply Chain Security Challenges
Led by representatives from the three companies, the work group will create guidance that defines, implements, and upholds security standards for the entire supply chain.
___________________________
@hacking_Attack
@Hacking_Video
Dark Reading
Microsoft, Intel, and Goldman Sachs to Lead New TCG Work Group to Tackle Supply Chain Security Challenges
Led by representatives from the three companies, the work group will create guidance that defines, implements, and upholds security standards for the entire supply chain.
Dark Reading: Attacks/Breaches
Optiv Announces Second Annual $40,000 Scholarship for Black, African American Identifying STEM Students
$10,000 to be awarded annually for four years each by Optiv’s Black Employee Network.
___________________________
@hacking_Attack
@Hacking_Video
Optiv Announces Second Annual $40,000 Scholarship for Black, African American Identifying STEM Students
$10,000 to be awarded annually for four years each by Optiv’s Black Employee Network.
___________________________
@hacking_Attack
@Hacking_Video
Dark Reading
Optiv Announces Second Annual $40,000 Scholarship for Black, African American Identifying STEM Students
$10,000 to be awarded annually for four years each by Optiv’s Black Employee Network.
hacking: security in practice
How do you tell people you're a hacker without annoying questions?
I've said it all by now Pen-tester, Penetration tester, Cyber Security Consultant, Hacker, Computer guy, IT personal. But eventually it always leads to me saying I hack into computers and customers pay me for a report about my findings.
And then Everytime "oh I need to be careful of you"
Don't get me wrong it's a cool job, one I'm really proud of but I'm so sick of getting asked "can you hack into my ex's Facebook" "can you get me the exam answers, for my upcoming exam" my fave is when the offer "compensation" I'll buy you a barrel of beer.
Funny quibble
Till today my favorite story I sorta equally enjoyed and hated this exchange. I was working on a white box, and set up a jump host the son of the owner (about 21) came up and said:"master hacker, I lost my phone either on a ship or the toilet can you hack that for me?"
In the end he lost it on a ship that was destined for the cape, and wouldn't return for several months to home port. He had to have someone send it through post next time they got to port.
Because I HACKED (find my iPhone) his phone he actually brought a crate of beer for when we had our final report so that was actually really tight of him.
submitted by /u/comrade-linux
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
How do you tell people you're a hacker without annoying questions?
I've said it all by now Pen-tester, Penetration tester, Cyber Security Consultant, Hacker, Computer guy, IT personal. But eventually it always leads to me saying I hack into computers and customers pay me for a report about my findings.
And then Everytime "oh I need to be careful of you"
Don't get me wrong it's a cool job, one I'm really proud of but I'm so sick of getting asked "can you hack into my ex's Facebook" "can you get me the exam answers, for my upcoming exam" my fave is when the offer "compensation" I'll buy you a barrel of beer.
Funny quibble
Till today my favorite story I sorta equally enjoyed and hated this exchange. I was working on a white box, and set up a jump host the son of the owner (about 21) came up and said:"master hacker, I lost my phone either on a ship or the toilet can you hack that for me?"
In the end he lost it on a ship that was destined for the cape, and wouldn't return for several months to home port. He had to have someone send it through post next time they got to port.
Because I HACKED (find my iPhone) his phone he actually brought a crate of beer for when we had our final report so that was actually really tight of him.
submitted by /u/comrade-linux
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
How do you tell people you're a hacker without annoying questions?
I've said it all by now Pen-tester, Penetration tester, Cyber Security Consultant, Hacker, Computer guy, IT personal. But eventually it always...
hacking: security in practice
ISO being able to create a new windows admin user?
Hello. So I have one crk of a windows pass recovery but it can only reset current pass and I need to create a new admin user for one thing.
I will give you a few methods for both Windows 7 and 10 hacking as a thank you.. not very private but you probably didn't know some of them :) cheers.
*It's all for my own PC, as I already said above I have a tool to reset the pass already and I know few methods of bypassing windows 7/10 pass. It's just for my own use.
submitted by /u/bhwolf0d
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
ISO being able to create a new windows admin user?
Hello. So I have one crk of a windows pass recovery but it can only reset current pass and I need to create a new admin user for one thing.
I will give you a few methods for both Windows 7 and 10 hacking as a thank you.. not very private but you probably didn't know some of them :) cheers.
*It's all for my own PC, as I already said above I have a tool to reset the pass already and I know few methods of bypassing windows 7/10 pass. It's just for my own use.
submitted by /u/bhwolf0d
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
ISO being able to create a new windows admin user?
Hello. So I have one crk of a windows pass recovery but it can only reset current pass and I need to create a new admin user for one thing. I...
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Robada la base de datos completa de RENAPER
https://cdn-images-1.medium.com/max/1344/0*3RTmJs13LDeh0ONO
PUBLICADO EN 20 OCTUBRE, 2021 POR EHACKING
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Robada la base de datos completa de RENAPER
https://cdn-images-1.medium.com/max/1344/0*3RTmJs13LDeh0ONO
PUBLICADO EN 20 OCTUBRE, 2021 POR EHACKING
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
Robada la base de datos completa de RENAPER
PUBLICADO EN 20 OCTUBRE, 2021 POR EHACKING
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Como “Hackear” más de 1000 bases de datos (TSDB) en 48 horas y por menos de 5 USD
https://cdn-images-1.medium.com/max/1280/0*7Fd-hkUIeMrX1KtX
Este articulo tiene propósitos netamente educativos y de concienciación en seguridad, durante su desarrollo no se realizó la alteración o…
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Como “Hackear” más de 1000 bases de datos (TSDB) en 48 horas y por menos de 5 USD
https://cdn-images-1.medium.com/max/1280/0*7Fd-hkUIeMrX1KtX
Este articulo tiene propósitos netamente educativos y de concienciación en seguridad, durante su desarrollo no se realizó la alteración o…
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
Como “Hackear” más de 1000 bases de datos (TSDB) en 48 horas y por menos de 5 USD
Este articulo tiene propósitos netamente educativos y de concienciación en seguridad, durante su desarrollo no se realizó la alteración o…
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Investigadores rompen Intel SGX con la nueva técnica de ataque de CPU ‘SmashEx’
https://cdn-images-1.medium.com/max/1385/0*U1pcbWg9K4fVXJf6
PUBLICADO EN 20 OCTUBRE, 2021 POR EHACKING
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Investigadores rompen Intel SGX con la nueva técnica de ataque de CPU ‘SmashEx’
https://cdn-images-1.medium.com/max/1385/0*U1pcbWg9K4fVXJf6
PUBLICADO EN 20 OCTUBRE, 2021 POR EHACKING
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
Investigadores rompen Intel SGX con la nueva técnica de ataque de CPU ‘SmashEx’
PUBLICADO EN 20 OCTUBRE, 2021 POR EHACKING
Hacking JSON Web Tokens (JWTs)
https://infosecwriteups.com/hacking-json-web-tokens-jwts-a6eea2753d23?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
https://infosecwriteups.com/hacking-json-web-tokens-jwts-a6eea2753d23?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
Medium
Hacking JSON Web Tokens (JWTs)
how hackers hack JWTs
how hackers hack JWTsContinue reading on InfoSec Write-ups » (https://infosecwriteups.com/hacking-json-web-tokens-jwts-a6eea2753d23?source=rss------bug_bounty-5)
___________________________
@hacking_Attack
@Hacking_Video
___________________________
@hacking_Attack
@Hacking_Video
Medium
Hacking JSON Web Tokens (JWTs)
how hackers hack JWTs
hacking: security in practice
Attending a conference hosted by a company sanctioned by the feds?
Asking here because I know most of Reddit users are from the US but there's a popular hacking conference held in Moscow by a company called Positive Technologies. The company is sanctioned by the US government for recruiting/working with Russian intelligence services lol
Anyways, the Russians I've swapped notes with really know their stuff and I'd love to attend their next in person event. Problem is that you have to pay to get in, and I'm not sure if there's consequences to me doing that.
Before I get to the visa/booking portion when the conference dates are announced, I was hoping to find out (or find out where to look) if I will run into any drama.
Last thing I want to do is look like a total buffoon on something like my reentry into the US asking what I was doing in Russia
submitted by /u/heap-spray-n-pray
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
Attending a conference hosted by a company sanctioned by the feds?
Asking here because I know most of Reddit users are from the US but there's a popular hacking conference held in Moscow by a company called Positive Technologies. The company is sanctioned by the US government for recruiting/working with Russian intelligence services lol
Anyways, the Russians I've swapped notes with really know their stuff and I'd love to attend their next in person event. Problem is that you have to pay to get in, and I'm not sure if there's consequences to me doing that.
Before I get to the visa/booking portion when the conference dates are announced, I was hoping to find out (or find out where to look) if I will run into any drama.
Last thing I want to do is look like a total buffoon on something like my reentry into the US asking what I was doing in Russia
submitted by /u/heap-spray-n-pray
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
Attending a conference hosted by a company sanctioned by the feds?
Asking here because I know most of Reddit users are from the US but there's a popular hacking conference held in Moscow by a company called...
hacking: security in practice
Cloudfront takeover !
I found an unclaimed Cloudfront instance on a subdomain I was testing. However when I went to create a new Cloudfront distribution with the URL as the CNAME it didn’t work, it showed an error explaining how you need to upload a trusted cert from a CA. The cert can’t be self-signed. There’s anyway to takeover this instance ? I did some research and I found that it’s impossible to exploit it anymore.
submitted by /u/kellyjames436
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
Cloudfront takeover !
I found an unclaimed Cloudfront instance on a subdomain I was testing. However when I went to create a new Cloudfront distribution with the URL as the CNAME it didn’t work, it showed an error explaining how you need to upload a trusted cert from a CA. The cert can’t be self-signed. There’s anyway to takeover this instance ? I did some research and I found that it’s impossible to exploit it anymore.
submitted by /u/kellyjames436
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
Cloudfront takeover !
I found an unclaimed Cloudfront instance on a subdomain I was testing. However when I went to create a new Cloudfront distribution with the URL as...
Hacking JSON Web Tokens (JWTs)
how hackers hack JWTsContinue reading on InfoSec Write-ups »
Read more...
how hackers hack JWTsContinue reading on InfoSec Write-ups »
Read more...